CVE-2013-2233
published 2018-05-04CVE-2013-2233: Ansible before 1.2.1 makes it easier for remote attackers to conduct man-in-the-middle attacks by leveraging failure to cache SSH host keys.
PriorityP336high7.4CVSS 3.0
AVNACHPRNUINSUCHIHAN
EPSS
1.96%
78.1th percentile
Ansible before 1.2.1 makes it easier for remote attackers to conduct man-in-the-middle attacks by leveraging failure to cache SSH host keys.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | ansible | < ansible 1.3.4+dfsg-1 (bookworm) | ansible 1.3.4+dfsg-1 (bookworm) |
| redhat | ansible | < 1.2.1 | 1.2.1 |
| redhat | ansible | >= 0 < 1.3.4+dfsg-1 | 1.3.4+dfsg-1 |
| redhat | ansible | >= 0 < 1.3.4+dfsg-1 | 1.3.4+dfsg-1 |
| redhat | ansible | >= 0 < 1.3.4+dfsg-1 | 1.3.4+dfsg-1 |
| redhat | ansible | >= 0 < 1.3.4+dfsg-1 | 1.3.4+dfsg-1 |
| redhat | ansible | >= 0 < 1.2.1 | 1.2.1 |
CVSS provenance
nvdv3.07.4HIGHCVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
nvdv2.05.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:N
osv7.4HIGH
vendor_debian7.4HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
Ansible fails to cache SSH host keys
ghsa·2018-10-10
CVE-2013-2233 [CRITICAL] Ansible fails to cache SSH host keys
Ansible fails to cache SSH host keys
Ansible before 1.2.1 makes it easier for remote attackers to conduct man-in-the-middle attacks by leveraging failure to cache SSH host keys.
OSV
Ansible fails to cache SSH host keys
osv·2018-10-10
CVE-2013-2233 [CRITICAL] Ansible fails to cache SSH host keys
Ansible fails to cache SSH host keys
Ansible before 1.2.1 makes it easier for remote attackers to conduct man-in-the-middle attacks by leveraging failure to cache SSH host keys.
OSV
CVE-2013-2233: Ansible before 1
osv·2018-05-04·CVSS 7.4
CVE-2013-2233 [HIGH] CVE-2013-2233: Ansible before 1
Ansible before 1.2.1 makes it easier for remote attackers to conduct man-in-the-middle attacks by leveraging failure to cache SSH host keys.
Debian
CVE-2013-2233: ansible - Ansible before 1.2.1 makes it easier for remote attackers to conduct man-in-the-...
vendor_debian·2013·CVSS 7.4
CVE-2013-2233 [HIGH] CVE-2013-2233: ansible - Ansible before 1.2.1 makes it easier for remote attackers to conduct man-in-the-...
Ansible before 1.2.1 makes it easier for remote attackers to conduct man-in-the-middle attacks by leveraging failure to cache SSH host keys.
Scope: local
bookworm: resolved (fixed in 1.3.4+dfsg-1)
bullseye: resolved (fixed in 1.3.4+dfsg-1)
forky: resolved (fixed in 1.3.4+dfsg-1)
sid: resolved (fixed in 1.3.4+dfsg-1)
trixie: resolved (fixed in 1.3.4+dfsg-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2013-2233 ansible: Does not cache SSH host keys (preventing possibility of server's host key to be checked against system host keys)
bugzilla·2013-07-03·CVSS 7.4
CVE-2013-2233 [HIGH] CVE-2013-2233 ansible: Does not cache SSH host keys (preventing possibility of server's host key to be checked against system host keys)
CVE-2013-2233 ansible: Does not cache SSH host keys (preventing possibility of server's host key to be checked against system host keys)
A security flaw was found in the way Ansible, a SSH-based configuration management, deployment, and task execution system, performed remote server's SSH host key management (previously ability to store known SSH server's host keys to local cache was not supported). A remote attacker could use this flaw to conduct man-in-the-middle (MiTM) attacks against the Ansible task execution system user.
References:
[1] http://www.openwall.com/lists/oss-security/2013/07/01/2
[2] http://www.openwall.com/lists/oss-security/2013/07/02/6
Upstream bug (no upstream patch as of 2013-07-03):
[3] https://github.com/ansible/ansible/issues/857
Discussion:
This issue affect
Bugzilla
ansible: CVE-2013-2233 ansible: Does not cache SSH host keys (preventing possibility of server's host key to be checked against system host keys) [fedora-all]
bugzilla·2013-07-03·CVSS 7.4
CVE-2013-2233 [HIGH] ansible: CVE-2013-2233 ansible: Does not cache SSH host keys (preventing possibility of server's host key to be checked against system host keys) [fedora-all]
ansible: CVE-2013-2233 ansible: Does not cache SSH host keys (preventing possibility of server's host key to be checked against system host keys) [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM
Bugzilla
ansible: CVE-2013-2233 ansible: Does not cache SSH host keys (preventing possibility of server's host key to be checked against system host keys) [epel-6]
bugzilla·2013-07-03·CVSS 7.4
CVE-2013-2233 [HIGH] ansible: CVE-2013-2233 ansible: Does not cache SSH host keys (preventing possibility of server's host key to be checked against system host keys) [epel-6]
ansible: CVE-2013-2233 ansible: Does not cache SSH host keys (preventing possibility of server's host key to be checked against system host keys) [epel-6]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RP
http://www.openwall.com/lists/oss-security/2013/07/01/2http://www.openwall.com/lists/oss-security/2013/07/02/6https://bugzilla.redhat.com/show_bug.cgi?id=980821https://github.com/ansible/ansible/issues/857https://www.ansible.com/securityhttp://www.openwall.com/lists/oss-security/2013/07/01/2http://www.openwall.com/lists/oss-security/2013/07/02/6https://bugzilla.redhat.com/show_bug.cgi?id=980821https://github.com/ansible/ansible/issues/857https://www.ansible.com/security
2018-05-04
Published